Search
Contactez-nous Suivez-nous sur Twitter En francais English Language
 

De la Théorie à la pratique











Freely subscribe to our NEWSLETTER

Newsletter FR

Newsletter EN

Vulnérabilités

Unsubscribe

Vigil@nce - PAN-OS: information disclosure via SSL/TLS Forward Proxy Decryption URL Filtering Bypass

October 2020 by Vigil@nce

This bulletin was written by Vigil@nce : https://vigilance.fr/offer/Computer...

SYNTHESIS OF THE VULNERABILITY

An attacker can bypass access restrictions to data via SSL/TLS Forward Proxy Decryption URL Filtering Bypass of PAN-OS, in order to obtain sensitive information.

- Impacted products: Palo Alto Firewall PA***, PAN-OS.
- Severity: 2/4.
- Consequences: data reading.
- Provenance: intranet server.
- Confidence: unique source (2/5).
- Creation date: 13/08/2020.

DESCRIPTION OF THE VULNERABILITY

The PAN-OS product offers a web service.

However, an attacker can bypass access restrictions to data.

An attacker can therefore use a vulnerability via SSL/TLS Forward Proxy Decryption URL Filtering Bypass of PAN-OS, in order to obtain sensitive information.

ACCESS TO THE FULL VIGIL@NCE BULLETIN

https://vigilance.fr/vulnerability/...




See previous articles

    

See next articles